CVE-2022-25996: Buffer Overflow
Published Aug 5, 2022
·Updated
A stack-based buffer overflow vulnerability exists in the confsrv addTimeGroup functionality of TCL LinkHub Mesh Wi-Fi MS1G0001.0014. A specially-crafted network packet can lead to a buffer overflow. An attacker can send a malicious packet to trigger this vulnerability.
Affected Software
2 affected components
Tcl Linkhub Mesh Wifi Ac1200=ms1g_00_01.00_14
Tcl Linkhub Mesh Wifi Ac1200
Event History
Aug 1, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-25996?
The severity of CVE-2022-25996 is critical with a CVSS score of 9.8.
2
What is the affected software for CVE-2022-25996?
The affected software for CVE-2022-25996 is Tcl LinkHub Mesh Wi-Fi MS1G_00_01.00_14.
3
How can a stack-based buffer overflow vulnerability be exploited in CVE-2022-25996?
A specially-crafted network packet can lead to a buffer overflow in CVE-2022-25996.
4
Can an attacker trigger CVE-2022-25996 remotely?
Yes, an attacker can trigger CVE-2022-25996 by sending a malicious packet over the network.
5
Is there a fix available for CVE-2022-25996?
Please refer to the vendor's security advisory or contact the vendor for information on available fixes for CVE-2022-25996.